minore di capitale

Magazine
Go Back   Computer Juice > Computer Software > Virus, Spyware e sicurezza

Register


 Default 

Suoni inusuali su Laptop




Reply
 
Thread Tools
  #1  
Old 24 Gennaio 2008, 09:57
Membro Gruppo
 
Default Suoni inusuali su Laptop

Salve,

Ho un problema con il mio computer e nella speranza che qualcuno potrebbe avere qualche idea di cosa sarebbe la causa. Di tanto in tanto farò sentire i suoni degli animali (gatto faceva le fusa, bahing pecore, ecc) o un uomo ridendo. Ho scansionato il computer con vari programmi antivirus e antispyware, ma ancora non riesce a trovare la causa. Speravo che qualcuno potrebbe avere qualche idea di cosa possa essere la causa.

Thanks:)
  #2  
Old 24 Gennaio 2008, 10:06
Moderatore del Gruppo
 
Default Suoni inusuali su Laptop

Pensi che è anch'esso un malware correlate?

Possiamo prendere un rapido sguardo per vedere.
Scarica e rinominare HijackThis (HJT)
  • Fare doppio clic su HJTInstall.
  • Fare clic sul Installare pulsante.
  • Sarà automaticamente posto in HJT C: \ Program Files \ TrendMicro \ HijackThis \ HijackThis.exe.
  • Su installare, HijackThis dovrebbe aprire per voi.
    • Chiudi HijackThis e rinominarlo.
    • Vai alla cartella C: \ Program Files \ Trend Micro \HijackThis.exe
    • Fai clic destro su HijackThis.exe e selezionare Rinomina.
    • Digitare sniper.exe e premere Inserisci.
    • Fare clic col tasto destro su sniper.exe e selezionare Invia a > Desktop (creare il collegamento)
  • Dal desktop aperto HiajckThis.
  • Se si utilizza Windows Vista, assicurarsi di Esegui come amministratore
  • Fare clic sul Eseguire una scansione del sistema e salvare un file di log pulsante
  • HijackThis effettua la scansione e poi si aprirà un log in notepad.
  • Copiare e incollare il log in tuo post.
    • Non HijackThis fissare hanno ancora nulla. La maggior parte di ciò che si ritiene essere innocui o addirittura richiesto.
Anche se abbiamo ribattezzato HijackThis di cecchino, si continua a fare riferimento ad esso, come HijackThis o HJT.

Si prega di inviare il log HJT nella risposta successiva.
__________________

  #3  
Old 24 Gennaio 2008, 10:14
Gruppo Donatori
 
Default Suoni inusuali su Laptop

giusto fare che mi ha fatto ridere al pensiero (id amore mio computer per bah)

solo per confermare la tesi non sono originari proprio fuori?

Hai controllato quale processo 'si verificano quando succede

vi è alcun software in esecuzione, quando lo fa

annuncio su un sito web, forse?
__________________
La temperatura all'interno di questa torta di mele è di oltre 1000 gradi.
Se spremere, un getto di metallo fuso Bramley Apple Squirt fuori.
Potrebbe andare il tuo modo; potrebbe andare miniera. In entrambi i casi, uno di noi sta andando verso il basso!


__________________

Il mio sistema: Mio

Processor (s):
AMD Athlon dual core
Motherboard:
winfast 6600
Memoria RAM:
3gb
Schede grafiche (s):
MSI 8600GT
Scheda Audio:
pochi DX9 5,1
Hard Drive (s):
Optical Drive (s):
Case / alimentatore:
Raffreddamento:
Rete / Internet:
Monitor (s):
Cibox 1440 x 900
Operating System (s):
Vista
  #4  
Old 24 Gennaio 2008, 10:15
Amministratore del Gruppo
 
Default Suoni inusuali su Laptop

Mi sono trasferito questo come ci è anch'esso un malware che fa questo ...
__________________

Il mio sistema: Hybr! D

Processor (s):
AMD Turion 64 X2 TL-64 2.2GHz
Motherboard:
HP nForce 560
Memoria RAM:
2GB DDR2 PC2-5300
Schede grafiche (s):
Nvidia 7150M integrata a bordo
Scheda Audio:
5,1 a bordo integrata
Hard Drive (s):
250GB 5400RPM SATA300
Optical Drive (s):
18x CD / DVDRW DL-ATA
Case / alimentatore:
Magazzino HP
Raffreddamento:
Magazzino HP
Rete / Internet:
10/100 Nic / 10MB Vergine cavo
Monitor (s):
17 "WXGA + HD BrightView Widescreen
Operating System (s):
Windows 7 Ultimate 32Bit
  #5  
Old 24 Gennaio 2008, 10:17
Membro Gruppo
 
Default Suoni inusuali su Laptop

Firefox, MSN messenger, GoogleTalk, AIM, YIM e di solito sono in esecuzione tutto il tempo.
  #6  
Old 24 Gennaio 2008, 10:37
Membro Gruppo
 
Default Suoni inusuali su Laptop

Ok, spero solo il mio coinquilino non scaricare qualcosa non dovrebbe di lol

Ecco il log


Logfile di Trend Micro HijackThis v2.0.2
Scan saved at 12:30:19, il 1/24/2008
Piattaforma: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Processi in esecuzione:
C: \ WINDOWS \ System32 \ smss.exe
C: \ WINDOWS \ system32 \ winlogon.exe
C: \ WINDOWS \ system32 \ services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ AdwareALERT \ AdwareAlertSrv.srv.exe
C: \ WINDOWS \ System32 \ svchost.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe
C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe
C: \ WINDOWS \ System32 \ WLTRYSVC.EXE
C: \ WINDOWS \ System32 \ bcmwltry.exe
C: \ WINDOWS \ system32 \ spoolsv.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Programmi \ File comuni \ Autodesk Shared \ Service \ AdskScSrv.exe
C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe
C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
C: \ Program Files \ Autodesk \ 3dsMax8 \ MentalRay \ satellite \ raysat_ 3dsmax8server.exe
C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe
C: \ WINDOWS \ Explorer.EXE
C: \ WINDOWS \ system32 \ WLTRAY.exe
C: \ WINDOWS \ system32 \ hkcmd.exe
C: \ WINDOWS \ system32 \ igfxpers.exe
C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe
C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe
C: \ WINDOWS \ system32 \ igfxsrvc.exe
C: \ Program Files \ Google \ Google Talk \ googletalk.exe
C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ jusched.exe
C: \ Program Files \ Unlocker \ UnlockerAssistant.exe
C: \ WINDOWS \ system32 \ ctfmon.exe
C: \ Program Files \ AIM6 \ aim6.exe
C: \ Program Files \ AdwareALERT \ AdwareAlert.exe
C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe
C: \ Program Files \ MSN Messenger \ msnmsgr.exe
C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe
C: \ Program Files \ AIM6 \ aolsoftware.exe
C: \ Program Files \ MSN Messenger \ usnsvc.exe
C: \ Program Files \ Mozilla Firefox \ firefox.exe
C: \ Program Files \ Trend Micro \ HijackThis \ sniper.exe.exe
C: \ WINDOWS \ system32 \ rundll32.exe
C: \ WINDOWS \ system32 \ notepad.exe

R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://cm.my.yahoo.com/
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page =
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page =
R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int Ethernet Impostazioni, ProxyOverride = *. locali
O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ Installs \ CPN \ yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: Yahoo! IE Suggest - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Program Files \ Yahoo! \ Search \ YSearchSuggest.dll
O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll
O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ ssv.dll
O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file)
O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll
O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file)
O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ Installs \ CPN \ yt.dll
O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe
O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe
O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe
O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe
O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe"
O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe"
O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe
O4 - HKLM \ .. \ Run: [googletalk] C: \ Program Files \ Google \ Google Talk \ googletalk.exe / autostart
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ jusched.exe"
O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Program Files \ Unlocker \ UnlockerAssistant.exe"
O4 - HKLM \ .. \ Run: [OpenGLv32] C: \ Program Files \ Internet Explorer \ PLUGINS \ cxsrrs.exe
O4 - HKCU \ .. \ Run: [ctfmon.exe] C: \ WINDOWS \ system32 \ ctfmon.exe
O4 - HKCU \ .. \ Run: [Aim6] "C: \ Program Files \ AIM6 \ aim6.exe" / d locale = it-IT ee: / / AOL / imApp
O4 - HKLM \ .. \ Run: [AdwareALERT] C: \ Program Files \ AdwareALERT \ AdwareAlert.exe-boot
O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe" tranquilla
O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Program Files \ MSN Messenger \ msnmsgr.exe" / background
O4 - Startup: Yahoo! Widgets.lnk = C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe
O8 - Extra contesto voce di menu: E & sporta in Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ micros ~ 2 \ Office11 \ EXCEL.EXE/3000
O9 - Extra pulsante: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ ssv.dll
O9 - Extra pulsante: Yahoo! Servizi - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll
O9 - Extra pulsante: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ micros ~ 2 \ Office11 \ REFIEBAR.DLL
O9 - Extra pulsante: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra pulsante: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab
Ø16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Program Files \ Yahoo! \ Common \ Yinsthelper.dll
Ø16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1168008961000
Ø16 - DPF: (6E32070A-766D-4EE6-879c-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1183542882812
O23 - Service: Adobe LM Service - Adobe Systems - C: \ Program Files \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe
O23 - Service: AdwareALERT Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Program Files \ AdwareALERT \ AdwareAlertSrv.srv.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Programmi \ File comuni \ Autodesk Shared \ Service \ AdskScSrv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE
O23 - Service: Macromedia Licensing Service - Unknown proprietario - C: \ Program Files \ Common Files \ Macromedia Shared \ Service \ Macromedia Licensing.exe
O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Program Files \ Autodesk \ 3dsMax8 \ MentalRay \ satellite \ raysat_ 3dsmax8server.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C: \ Program Files \ Symantec AntiVirus \ SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Sconosciuto proprietario - C: \ WINDOWS \ System32 \ WLTRYSVC.EXE

--
End of file - 9405 bytes
  #7  
Old 24 Gennaio 2008, 10:44
Moderatore del Gruppo
 
Default Suoni inusuali su Laptop

AdwareALERT è una versione a pagamento? Se poi non vanno ad aggiungere / rimuovere i programmi e disinstallarlo.


Apri HijackThis e selezionare Non solo un sistema di scansione.

Mettere un segno di spunta accanto alle seguenti voci:

O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file)
O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file)


Chiudere tutte le finestre, ad eccezione di HijackThis e fare clic su Fix controllati.

Uscita HijackThis.

----------

Java è di lasciare la vostra data di sistema vulnerabile.
Vecchie versioni di Java sono vulnerabilità che il malware può essere utilizzato per infettare il sistema.

Fase 1

Vai a http://java.sun.com/javase/downloads/index.jsp
Il Sun Java pagina scorrere fino al 4. scaricare.

Fare clic sul pulsante e salvare il programma di installazione sul desktop.
Fare doppio clic sull'icona di installazione dal desktop e seguire le istruzioni per completare l'installazione.

Fase 2

Vai a Inizio > Pannello di controllo > Aggiungi / Rimuovi programmi
Disinstalla tutte le vecchie versioni di Java.
Rimuovere qualsiasi voce con Java Runtime Environment (JRE o J2SE) nel nome.Non rimuovere Java 6 Update 4
Riavviare il computer una volta che tutte le componenti Java sono stati rimossi.
Fare doppio clic Risorse del computer sul desktop, questo Individuare cartella: C: \ Program Files \Java
Apri la cartella Java e cancellare eventuali sottocartelle salvo il jre1.6.0_04 cartella che è stata appena creata dal più recente installazione di Java.

----------

Quindi si esegue una nuova scansione di HJT e posta il log.
__________________

  #8  
Old 24. Gen 2008, 10:49
Membro Gruppo
 
Default Suoni inusuali su Laptop

Sì, Adware Alert è pagato versione, è comunque necessario per rimuoverlo?
  #9  
Old 24. Gen 2008, 10:58
Moderatore del Gruppo
 
Default Suoni inusuali su Laptop

No, non è necessario, è non solo uno dei miei preferiti.

Andare avanti e fare gli altri passaggi e quindi i prossimi due descritti di seguito.

Vai a questo post e fare passi due e tre. Poi dopo il log di SAS e di un nuovo un log di HJT.
__________________

  #10  
Old 24 Gennaio 2008, 14:47
Membro Gruppo
 
Default Suoni inusuali su Laptop

Ok ecco il log HJT


Logfile di Trend Micro HijackThis v2.0.2
Scan saved at 4:43:41, il 1/24/2008
Piattaforma: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Processi in esecuzione:
C: \ WINDOWS \ System32 \ smss.exe
C: \ WINDOWS \ system32 \ winlogon.exe
C: \ WINDOWS \ system32 \ services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ AdwareALERT \ AdwareAlertSrv.srv.exe
C: \ WINDOWS \ System32 \ svchost.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe
C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe
C: \ WINDOWS \ System32 \ WLTRYSVC.EXE
C: \ WINDOWS \ System32 \ bcmwltry.exe
C: \ WINDOWS \ system32 \ spoolsv.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Programmi \ File comuni \ Autodesk Shared \ Service \ AdskScSrv.exe
C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe
C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
C: \ Program Files \ Autodesk \ 3dsMax8 \ MentalRay \ satellite \ raysat_ 3dsmax8server.exe
C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe
C: \ WINDOWS \ Explorer.EXE
C: \ WINDOWS \ system32 \ WLTRAY.exe
C: \ WINDOWS \ system32 \ hkcmd.exe
C: \ WINDOWS \ system32 \ igfxpers.exe
C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe
C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe
C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe
C: \ WINDOWS \ system32 \ igfxsrvc.exe
C: \ Program Files \ Google \ Google Talk \ googletalk.exe
C: \ Program Files \ Unlocker \ UnlockerAssistant.exe
C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe
C: \ WINDOWS \ system32 \ ctfmon.exe
C: \ Program Files \ AIM6 \ aim6.exe
C: \ Program Files \ AdwareALERT \ AdwareAlert.exe
C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe
C: \ Program Files \ MSN Messenger \ msnmsgr.exe
C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe
C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe
C: \ Program Files \ AIM6 \ aolsoftware.exe
C: \ Program Files \ Mozilla Firefox \ firefox.exe
C: \ WINDOWS \ system32 \ notepad.exe
C: \ Program Files \ MSN Messenger \ usnsvc.exe
C: \ Program Files \ Trend Micro \ HijackThis \ sniper.exe.exe

R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page =
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page =
R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int Ethernet Impostazioni, ProxyOverride = *. locali
O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ Installs \ CPN \ yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: Yahoo! IE Suggest - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Program Files \ Yahoo! \ Search \ YSearchSuggest.dll
O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll
O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll
O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll
O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ Installs \ CPN \ yt.dll
O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe
O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe
O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe
O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe
O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe"
O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe"
O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe
O4 - HKLM \ .. \ Run: [googletalk] C: \ Program Files \ Google \ Google Talk \ googletalk.exe / autostart
O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Program Files \ Unlocker \ UnlockerAssistant.exe"
O4 - HKLM \ .. \ Run: [OpenGLv32] C: \ Program Files \ Internet Explorer \ PLUGINS \ cxsrrs.exe
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe"
O4 - HKCU \ .. \ Run: [ctfmon.exe] C: \ WINDOWS \ system32 \ ctfmon.exe
O4 - HKCU \ .. \ Run: [Aim6] "C: \ Program Files \ AIM6 \ aim6.exe" / d locale = it-IT ee: / / AOL / imApp
O4 - HKLM \ .. \ Run: [AdwareALERT] C: \ Program Files \ AdwareALERT \ AdwareAlert.exe-boot
O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe" tranquilla
O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Program Files \ MSN Messenger \ msnmsgr.exe" / background
O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe
O4 - Startup: Yahoo! Widgets.lnk = C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe
O8 - Extra contesto voce di menu: E & sporta in Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ micros ~ 2 \ Office11 \ EXCEL.EXE/3000
O9 - Extra pulsante: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll
O9 - Extra pulsante: Yahoo! Servizi - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll
O9 - Extra pulsante: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ micros ~ 2 \ Office11 \ REFIEBAR.DLL
O9 - Extra pulsante: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra pulsante: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab
Ø16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Program Files \ Yahoo! \ Common \ Yinsthelper.dll
Ø16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1168008961000
Ø16 - DPF: (6E32070A-766D-4EE6-879c-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1183542882812
Ø20 - Winlogon Notify:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll
O23 - Service: Adobe LM Service - Adobe Systems - C: \ Program Files \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe
O23 - Service: AdwareALERT Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Program Files \ AdwareALERT \ AdwareAlertSrv.srv.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Programmi \ File comuni \ Autodesk Shared \ Service \ AdskScSrv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE
O23 - Service: Macromedia Licensing Service - Unknown proprietario - C: \ Program Files \ Common Files \ Macromedia Shared \ Service \ Macromedia Licensing.exe
O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Program Files \ Autodesk \ 3dsMax8 \ MentalRay \ satellite \ raysat_ 3dsmax8server.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C: \ Program Files \ Symantec AntiVirus \ SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Sconosciuto proprietario - C: \ WINDOWS \ System32 \ WLTRYSVC.EXE

--
End of file - 9366 bytes



e il log di SAS


SUPERAntiSpyware Scan Entra
http://www.superantispyware.com

Generated 01/24/2008 at 04:21

Applicazione Versione: 3/9/1008

Core Rules Database Version: 3387
Trace Rules Database Version: 1381

Tipo di scansione: Scansione completa
Total Scan Time: 02:02:14

Memoria oggetti scansionati: 543
Memoria minacce rilevate: 0
Voci del Registro di scansione: 7022
Registro di minacce rilevate: 18
File oggetti scansionati: 91.621
File minacce rilevate: 179

Adware.Tracking Cookie
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ atwola [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ interclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@www.burstnet [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@eztracks.aavalue [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ar.atwola [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ precisionclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ apmebf [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@stats.sellmosoft [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ maxserving [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ehg-pcsecurityshield.hitbox [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.euroclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@bs.serving-sys [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@www.incentaclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ Casalemedia [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ pubblicità [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@tremor.adbureau [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ doubleclick [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ screensaversandwallpa persfree [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@statse.webtrendslive [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ microsoftwlsearchcrm. 112.2o7 [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ ValueClick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@csi.valueclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ adinterax [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ Mediaplex [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ad2.adnetinteractive [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ hitbox [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@server2.bkvtrack [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@msnlivefavorites.112. 2o7 [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.specificclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ atdmt [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ directtrack [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ adlegend [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ fastclick [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ imrworldwide [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@i.screensavers [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@pub.visicommedia [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ cttrack amber@angleinteractive.dire [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ AdTech [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.vlaze [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ tribalfusion [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.glispa [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.diet [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.zanox [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@richmedia.yahoo [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@perf.overture [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.yieldmanager [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@thumbplay.112.2o7 [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ kt.112.2o7 microsoftwlmessengerm [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ mywebsearch [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ RedOrbit [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@eas.apm.emediate [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ roiservice [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ xiti [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.bridgetrack [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ questionmarket [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ collettiva-media [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@login.tracking101 [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ burstnet [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftwlmailmkt.11 2.2o7 [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ cpvfeed [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ Zedo [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.pointroll [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ specificclick [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ revsci [2]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ serving-sys [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftoffice.112.2 o7 [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ incentaclick [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ azjmp [1]. Txt
C: \ Documents and Settings \ Amber \ Cookies \ ambra @ AdRevolver [2]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ 2o7 [2]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ pubblicità pubblicità [1]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ apmeb f [1]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ Wola administrator@ar.at [1]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atdmt [2]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atwol a [1]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ Doppia eclick [1]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ bordo. UR4 [1]. txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ media complessa [1]. Txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ perf. overture [1]. txt
C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ revsc i [2]. Txt

Unclassified.SpywareBot (non una minaccia)
HKU \ S-1-5-21-782665702-2079865073-2220674083-1007 \ Software \ SpywareBot
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # Inno Setup: Setup

Versione
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # Inno Setup: App Path
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # installLocation
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # Inno Setup: Icon

Gruppo
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # Inno Setup: User
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # Inno Setup: Selected

Compiti
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # Inno Setup:

Deselezionato Compiti
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # DisplayName
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # DisplayIcon
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # UninstallString
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # QuietUninstallString
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # DisplayVersion
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 Publisher #
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # NoModify
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # NoRepair
HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ nstall Uni \ SpywareBot_is1 # InstallDate
C: \ Program Files \ SpywareBot \ DataBase.ref
C: \ Program Files \ SpywareBot \ Backups HOSTS \ 2007-7-4-1183532630_hosts
C: \ Program Files \ SpywareBot \ Backups HOSTS \ 2007-7-4-1183532711_hosts
C: \ Program Files \ SpywareBot \ Backups HOSTS \ 2007-7-5-1183618812_hosts
C: \ Program Files \ SpywareBot \ Backups HOSTS \ 2007-7-8-1183878034_hosts
C: \ Program Files \ SpywareBot \ HOSTS Backups
C: \ Program Files \ SpywareBot \ Launcher.exe
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_31_58.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_31_59.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_42_18.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_42_32.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_45_31.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_45_37.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_54_57.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_55_06.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_04_16.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_04_27.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_38_13.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_38_16.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_20_55.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_20_58.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_22_42.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_22_47.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_25_27.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_25_29.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_31_56.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_31_57.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_15_52_42.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_15_52_44.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_09.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_11.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_12.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_45.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_46.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_48.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_46_46.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_46_48.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_43.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_44.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_45.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_22_17_15_03.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_22_17_15_07.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_10_10.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_10_17.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_28_15.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_28_18.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_33_58.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_34_01.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_35_13.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_35_16.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_27_09_09_37.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_06_27_09_09_55.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_37.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_39.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_45.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_21_00_52.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_21_01_01.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_03_00.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_03_01.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_04_55.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_04_56.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_08_14_41.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_08_14_45.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_34.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_36.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_43.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_03_00_08.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_08_22_16.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_08_23_22.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_53_23.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_53_27.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_54_28.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_05.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_09.log
C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_24.log
C: \ Program Files \ SpywareBot \ Log
C: \ Program Files \ SpywareBot \ Quarantine
C: \ Program Files \ SpywareBot \ Registry Backup
C: \ Program Files \ SpywareBot \ Scheduler.exe
C: \ Program Files \ SpywareBot \ Settings \ CustomScan.stg
C: \ Program Files \ SpywareBot \ Settings \ IgnoreList.stg
C: \ Program Files \ SpywareBot \ Settings \ ScanInfo.stg
C: \ Program Files \ SpywareBot \ Settings \ ScanResults.stg
C: \ Program Files \ SpywareBot \ Settings \ SelectedFolders.stg
C: \ Program Files \ SpywareBot \ Settings \ Settings.stg
C: \ Program Files \ SpywareBot \ Impostazioni
C: \ Program Files \ SpywareBot \ SpywareBot.dll
C: \ Program Files \ SpywareBot \ SpywareBot.exe
C: \ Program Files \ SpywareBot \ SpywareBot.url
C: \ Program Files \ SpywareBot \ unins000.dat
C: \ Program Files \ SpywareBot \ unins000.exe
C: \ Program Files \ SpywareBot
C: \ Documents and Settings \ All Users \ Menu Avvio \ Programmi \ SpywareBot \ SpywareBot sul Web.lnk
C: \ Documents and Settings \ All Users \ Menu Avvio \ Programmi \ SpywareBot \ SpywareBot.lnk
C: \ Documents and Settings \ All Users \ Menu Avvio \ Programmi \ SpywareBot \ Uninstall SpywareBot.lnk
C: \ Documents and Settings \ All Users \ Menu Avvio \ Programmi \ SpywareBot

Adware.Lop
C: \ SYSTEM VOLUME

Information \ _restore (F02BDCB2-9aaa-42A6-9E59-C24093E0AD6C) \ RP186 \ A0139352.EXE
Reply

Register

Segnalibri

Threads simili
Filo Thread Starter Forum Risposte Ultimo Post
Schermo nero su laptop, Sounds Like It's Running Così howd I Get A?! sassy Computer, Cellulari e PDA 3 7 settembre 2009 11:51
Fan VGA Assomiglia a uno Buzzsaw! Swizz Schede Grafiche & Monitor 5 26 apr 2009 07:13
** Suoni Mantiene tagliare ** brookaovhaydock Audio, altoparlanti e MP3 1 2 Feb 2009 06:52
Unusual Sound Problema PewterScreaminMach Audio, altoparlanti e MP3 9 7 apr 2008 13:38
Symantec inusuali pop-up - hanno bisogno di qualcuno che mi guida attraverso il file di Log-ecc Madraykin Virus, Spyware e sicurezza 7 2 Dic 2007 15:37
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Computer Juice.

Powered by vBulletin ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd. Traduzione italiana SEO by vBSEO © 2009, alla scansione, Inc.